First published: Fri Sep 13 2024(Updated: )
An internal product security audit discovered a UEFI SMM (System Management Mode) callout vulnerability in some ThinkSystem servers that could allow a local attacker with elevated privileges to execute arbitrary code.
Credit: psirt@lenovo.com
Update system firmware to the version (or newer) indicated for your model in the advisory: https://support.lenovo.com/us/en/product_security/LEN-165524
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.